Cisco Firepower extractors

Cisco Firepower extractors

@mmogilko

View on Github
Open Issues
Stargazers

Graylog GROK extractors for Cisco Firepower Intrusion events and Access Control log (simple syslog, not estreamer)

firepower-access_control-extractor.json - Access Control log

firepower-intrusion-extractor.json - Intrusion events log

firepower-extractor.json - both Intrusion events and Access Control logs